Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

PKI Lead Engineer

$122.9k - $150k

ASM Research, An Accenture Federal Services Company

The PKI Lead Engineer serves as the senior technical authority for the design, implementation, and sustainment of enterprise Public Key Infrastructure services that enable secure authentication, encryption, and digital signatures across the client's IT environment. This role leads the lifecycle management of digital certificates and cryptographic keys, ensuring resilient, compliant, and well-governed PKI capabilities that protect sensitive information and support mission critical access control.

Key Responsibilities

  • Lead the design, implementation, and ongoing operations of enterprise PKI infrastructures, including root and subordinate certificate authorities, registration authorities, and associated hardware and software components.

  • Manage the full lifecycle of digital certificates and cryptographic keys for users, devices, applications, and services, including issuance, renewal, suspension, and revocation with strong controls and automation.

  • Develop, document, and enforce PKI policies, certification practice statements, standards, and procedures aligned to enterprise security and regulatory requirements.

  • Integrate PKI services with identity and access management platforms, directory services, network security controls, and secure application architectures to enable strong authentication and encryption.

  • Monitor, audit, and assess PKI infrastructure health and compliance, performing regular reviews, root cause analyses, and remediation activities to maintain high availability and integrity.

  • Lead the evaluation, selection, and implementation of PKI related tools, including certificate discovery, management, and automation solutions, and recommend improvements to strengthen cryptographic services.

  • Collaborate with security operations and application teams to analyze and respond to PKI related incidents, vulnerabilities, and findings, including support for penetration testing and secure code initiatives.

  • Provide expert guidance, training, and mentoring to engineers and developers on PKI usage, certificate management best practices, and secure cryptographic design patterns in enterprise environments.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related technical discipline, or equivalent relevant experience.

  • Minimum of 8 years of experience in cybersecurity, security engineering, or network security roles, including significant hands-on exposure to PKI or cryptographic services.

  • Demonstrated experience designing, implementing, and operating enterprise PKI solutions, including certificate authorities, key management, and certificate lifecycle workflows.

  • Strong knowledge of authentication, authorization, and encryption concepts, including TLS, digital signatures, certificate based access control, and related standards (for example, X.509, OCSP, CRL).

  • Ability to obtain and maintain a Public Trust investigation, with US citizenship required in support of federal client requirements.

  • Proficiency with Unix/Linux or similar operating systems and enterprise infrastructure environments used to host PKI and security services.

  • Candidates must possess a current secret security clearance.

Preferred Qualifications

  • Advanced cybersecurity certifications such as CISSP, CISM, CISA, or CRISC demonstrating broad security architecture and governance expertise.

  • Experience integrating PKI with identity and access management platforms, federated identity standards (for example, SAML), and role based access control models in large enterprises.

  • Background supporting PKI and cryptographic services in complex federal or regulated IT environments with rigorous compliance requirements.

  • Handson experience with certificate discovery and management tools, hardware security modules, and automation frameworks for largescale certificate deployment.

  • Familiarity with secure software development practices, application security testing, and remediation of cryptographic vulnerabilities across web and service architectures.

  • Prior experience leading small technical teams or serving as a subject matter expert for enterprise security initiatives.

Job-Specific Skills

  • Enterprise PKI Architecture â?¯-- Designs and documents scalable PKI architectures, including root hierarchy, trust models, and integration patterns with enterprise systems.

  • Certificate Lifecycle Management â?¯-- Establishes and operates repeatable processes and automation for issuing, renewing, and revoking certificates for diverse identities and workloads.

  • Cryptographic Standards Expertise â?¯-- Applies industry cryptographic standards and algorithms to ensure strong encryption, signing, and key management practices in enterprise solutions.

  • Policy and Governance Development â?¯-- Authors and maintains PKI policies, standards, and certification practice statements, aligning them with organizational risk and compliance needs.

  • Security Integration Engineering â?¯-- Integrates PKI with identity, access management, network devices, and applications to enable secure, certificate based controls.

  • PKI Monitoring and Audit â?¯-- Implements monitoring, logging, and audit processes that provide visibility into PKI operations and support internal and external assessments.

  • Incident Response for PKI â?¯-- Leads investigation and remediation of PKI related incidents, including mis-issued certificates, key compromise, and cryptographic vulnerabilities.

  • Automation and Tooling â?¯-- Leverages scripting, configuration management, and PKI toolsets to streamline certificate issuance, enrollment, and inventory management.

  • Cross Functional Collaboration â?¯-- Works closely with security, infrastructure, application, and operations teams to align PKI capabilities with enterprise objectives and constraints.

  • Technical Mentorship â?¯-- Coaches junior engineers and developers on PKI concepts, secure implementation patterns, and operational best practices to uplift team capability.

Preferred Skills

  • Experience engineering PKI solutions in hybrid cloud and on premises environments, including integration with major cloud providers' identity and key management services.

  • Advanced scripting or automation capability (for example, PowerShell, Python, or similar) used to integrate PKI workflows with enterprise tooling and CI/CD pipelines.

  • Familiarity with certificate based network access control, VPN, and device authentication architectures in large, distributed environments.

  • Experience conducting PKI focused security assessments, including configuration reviews, key protection evaluations, and readiness for external compliance audits.

Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.

Physical Requirements

The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

$122,900 - 150,000

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the PKI Lead Engineer in Boston, MA vacancy
  •  ...Technical Lead Java Or Scala Engineer We are a rapidly growing Big Data Management and Analytics software company. Our software allows IT departments and their business users to semantically link, analyze, and manage diverse data, whether internal or external, structured... 
    Suggested
    Remote work
    Flexible hours

    Roberts Recruiting

    Boston, MA
    1 day ago
  •  ...Lead Software Engineer / DevOps This client is looking for a Lead Software/DevOps Engineer to join their high-performing trading platform team. Located in downtown Boston, this is a contract-to-hire role requiring 4 days onsite per week. This company is a large global... 
    Suggested
    Full time
    Contract work
    Temporary work
    Flexible hours

    Motion Recruitment

    Boston, MA
    15 hours ago
  •  ...Lead Cloud Platform Engineer For Civil Aviation Team ASI's mission-critical technology powers decision-making across aviation, defense, energy, and other critical infrastructure domains. Backed by top-tier investors including Andreessen Horowitz, Spark Capital, and... 
    Suggested

    Air Space Intelligence

    Boston, MA
    1 day ago
  • $175k - $200k

     ...America's Test Kitchen is looking for a Lead Software Engineer to join our Retention Zone and lead the charge on bringing AI into our subscription products and to drive subscriber value by delivering new experiences. This is a hands-on individual contributor role for... 
    Suggested
    Full time

    America's Test Kitchen

    Boston, MA
    4 days ago
  • $118.98k - $195.47k

     ...Lead Software Engineer As a Lead Software Engineer, you will develop and execute the key technology components of the Enterprise API Technology & Platform strategy and ensure alignment with Guardian's enterprise digital strategy. You will be an innovative software... 
    Suggested
    3 days per week

    Guardian Life Insurance

    Boston, MA
    1 day ago
  • $112k - $132.1k

     ...A leading research institution in Boston is seeking a Senior Software Engineer to develop innovative research and clinical applications. Candidates will be responsible for coding new features, writing technical documentation, and leading discussions with stakeholders.... 

    Dana-Farber Cancer Institute

    Boston, MA
    3 days ago
  • $149.6k - $162.4k

     ...The Lead Workday Extend Engineer is the technical owner of the Workday Extend platform and serves as the enterprise authority for designing, delivering, and governing custom applications built on Extend. This role partners with senior functional, security, integration... 

    Dana-Farber Cancer Institute

    Boston, MA
    3 days ago
  • $118.98k - $195.47k

     ...As a Lead Software Engineer, you will develop and execute the key technology components of the Enterprise API Technology & Platform strategy and ensure alignment with Guardian's enterprise digital strategy. You will be an innovative software engineer and will harness... 
    Full time
    Visa sponsorship
    Work visa
    Flexible hours
    3 days per week

    Guardian Life

    Boston, MA
    2 days ago
  •  ...Lead Vulnerability Management Engineer, Boston, MA We are seeking a Lead Vulnerability Management Engineer. The purpose of Cybersecurity Engineering and Operations is to provide best in class and versatile security services to the enterprises. Within the Cybersecurity... 

    NextStep

    Boston, MA
    2 days ago
  • $225k - $260k

     ...ClassPass, Capital One, Cisco, and Rippling, just to name a few. Our focus is on building software with care and craftsmanship and our engineering blog posts offer a taste of that. Backed by top investors such as Matrix Partners, Battery Ventures, and Delta-V Capital, we'... 
    Visa sponsorship

    LogRocket

    Boston, MA
    1 day ago
  • $230k - $270k

     ...Langchain is seeking a Principal/Lead Software Engineer in Boston to drive technical direction and build across the full stack. Candidates should have 10+ years of experience in backend or fullstack engineering, strong programming skills in Python and Go, and experience... 
    Flexible hours

    LangChain

    Boston, MA
    3 days ago
  •  ...A growing technology firm in Brookline is seeking a Founding Lead Engineer to architect and build mobile systems. The candidate will define the tech vision, manage cloud infrastructure on AWS, and lead an engineering team. With a strong background in React Native, AWS,... 

    Realfemma

    Brookline, MA
    3 days ago
  •  ...Job Title- Lead, Software Engineering Location: Remote Duration: Full Time About BigRio: BigRio is a leading IT Services company specializing in Data and Analytics in the Healthcare Industry. We are dedicated to being our clients' strategic partners... 
    Full time
    Remote work

    Saviance

    Boston, MA
    1 day ago
  •  ...Lead Software Engineer A stellar opportunity to have massive impact: join the rapidly growing team at a company continually redefining how people travel. As Lead Software Engineer, you will be directly responsible for many of the innovative features we'll be working... 

    Roberts Recruiting

    Cambridge, MA
    1 day ago
  • $150k - $180k

     ...Lead Software Engineer Be a part of the team building the future of healthcare! Firefly Health is building a revolutionary new type of comprehensive health "care and coverage," powered by a relationship-driven care team, a trusted virtual and in-person clinical... 
    Work at office
    Remote work

    Firefly Health

    Watertown, MA
    4 days ago
  •  ...Insider, Inc. in Boston seeks a Team Lead for the Forward Deployed AI Engineering Team. This role involves leading a customer-facing group to deploy and scale federated AI solutions. Responsibilities include working with customers to design AI models, mentoring engineers... 
    Visa sponsorship

    INSIDER

    Boston, MA
    3 days ago
  •  ...A leading healthcare insurance company in Boston is seeking a Lead AI Engineer to guide their AI engineering teams. This hands-on role involves leading technical direction, overseeing the design of AI solutions, and mentoring a team of skilled engineers. The ideal candidate... 
    Full time

    Blue Cross Blue Shield of Massachusetts

    Boston, MA
    4 days ago
  • $160k - $200k

     ...A financial technology firm in Somerville is seeking a Lead Software Engineer to manage a small Agile team and work on critical real-time systems. The ideal candidate will have significant experience in C++ and proven technical management skills. Responsibilities include... 
    Remote work

    oneZero Financial Systems

    Somerville, MA
    4 days ago
  • $110k - $188.75k

     ...prototype, and scale modern web and mobile applications that power next-generation wealth management experiences. You will work with engineers and use cases across the full stack-frontend, backend, APIs, and data-partnering closely with product, design, and platform teams... 
    Temporary work
    Flexible hours

    State Street Corporation

    Boston, MA
    3 days ago
  •  ...Lead Security Engineer Boston or Bay Area, hybrid preferred (2x/week in office) About Us Liberate builds AI agents to automate manual tasks for the $2.7T insurance industry. We started with voice — the hardest and most valuable channel in insurance — and are... 
    Work at office
    Shift work

    Liberate

    Boston, MA
    3 days ago
  • $209k - $238.5k

    Sr Lead Software Engineer, Analytics - Shopping (Remote-Eligible) What you’ll do: Lead a portfolio of diverse technology projects and a team of developers with deep experience in distributed microservices, and full stack systems to create solutions that help meet regulatory... 
    Remote job
    Full time
    Part time
    Internship
    Local area

    Capital One

    Boston, MA
    3 days ago
  • $144.2k - $288.4k

     ...health experiences. We are looking for a hands‑on, passionate engineering leader to join a high‑energy, mission‑driven team on the forefront...  ...—to reinvent how consumers engage with their health. As the Lead Director of Software Engineering, you will lead the strategic vision... 
    Hourly pay
    Full time
    Temporary work
    Work experience placement
    Work at office
    Local area
    Remote work

    Stryker

    Boston, MA
    3 days ago
  • A leading financial services company seeks a Senior Lead Software Engineer for remote work. You will lead diverse technology projects, collaborate with product managers, and utilize skills in programming languages like Java, Python, and cloud services. The role requires... 
    Remote job

    Capital One

    Boston, MA
    2 days ago
  • $45 - $55 per hour

     ...complaints. Organize work orders to be performed by Building Engineers. Ensure that building systems and tenant service requests are handled...  ...pertain to specific job duties. Benefits and Perks Industry leading Parental Leave Policy (up to 16 weeks) Generous healthcare... 
    Hourly pay
    Permanent employment
    For contractors
    Afternoon shift
    Weekday work

    MASSACHUSETTS MARITIME ACADEMY

    Boston, MA
    15 hours ago
  • $120k - $225k

     ...Lead Salesforce Software Engineer page is loaded## Lead Salesforce Software Engineerlocations: Needham: Boston, MA, United Statestime type: Full timeposted on: Posted Todayjob requisition id: R93968# **Wellington Management** offers comprehensive investment management... 
    Full time
    Work at office
    Remote work
    Flexible hours
    1 day per week

    Wellington Management

    Boston, MA
    3 days ago
  •  ...combined with our strong history of existing relationships and engineering excellence, allows RMF to add great value to clients who are focused...  ...with the project team, including RMF’s individual discipline leads, as well as the architect, owner, and other project... 
    Local area

    Internetwork Expert

    Boston, MA
    2 days ago
  • $216k - $324k

     ...Senior Lead Software Engineer - Developer Infrastructure At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success... 

    Klaviyo

    Boston, MA
    4 days ago
  •  ...protect personnel, property, and information assets. Responsibilities Lead the implementation, integration, and maintenance of enterprise‑...  ...Information Security work experience. Previous senior security engineer or similar role with security responsibilities. Professional... 
    Work experience placement
    Local area
    Flexible hours

    MFS International Australia Pty Ltd

    Boston, MA
    4 days ago
  • Brookline, United States | Posted on 10/28/2025 We’re looking for a Founding Lead Engineer — a hands‑on builder who’s as excited about shaping early architecture and shipping features as they are about helping set the tone for FeMMA’s engineering culture. You’ll work closely... 
    Work experience placement

    Realfemma

    Brookline, MA
    15 hours ago
  • Medtronic is seeking an experienced professional to spearhead research and development efforts, focusing on human-machine systems. The ideal candidate will possess a strong background in human centered design, along with a degree in a relevant field and significant experience...

    Medtronic

    Boston, MA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to PKI Lead Engineer. Be the first to apply!